User guide
Configuring Incoming and Outgoing Services
User Guide 67
Creating a custom service using the wizard
If you need to allow a service that is not listed in the common ser-
vices, configure a custom service based on a TCP port, a UDP port,
or a protocol. The easiest way to do this is to use the Traffic Filter
Wizard.
1 From the navigation bar at left, select Wizards.
2 Next to Define a rule for filtering network traffic between
interfaces, click Go.
3 Work through the wizard, following the instructions on the
screens.
The Traffic Filter Wizard consists of the following steps (steps asso-
ciated with optional functionality you decide not to enable are
automatically skipped by the wizard):
Step 1: Welcome
The first screen describes what the wizard does and the
information you need before running it.
Step 2: Basic Filter Definition
On the next screen, you specify basic information such as the
filter name and whether it is appied to incoming or outgoing
traffic.
Step 3: Protocols and Ports
Next, you specify the ports you want to assign to this traffic
filter.
Step 4: Source Hosts
On the next screen, you identify the IP addresses of the source
hosts to which this traffic filter will apply.
Step 5: Destination Hosts
In this step, you identify the IP addresses of the destination hosts
to which this traffic filter will apply.
Optional: Destination “service” host
This step appears if you have configured an incoming service to
allow traffic from the enternal network to pass through to the
trusted network. A local host on the trusted network must be
specified as the destination for all traffic matching this filter. This
host is referred to as a "service host" because it is generally used